Security Scan Report: netflix-71f05.firebaseapp.com

Site favicon
Submitted: Sep 29, 2026, 6:16:43 AMCompleted: Sep 29, 2026, 6:17:19 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 90%

9
Risk Score

Free firebaseapp.com subdomain impersonating Netflix with a cloned landing page and a corroborated multi-feed phishing report on the primary domain. Do not enter any credentials or email details.

Risk Factors (5)
Impersonation of the Netflix brand on a non-Netflix domain
Corroborated phishing threat-intel match against the primary domain
Hosted on an instant/free hosting platform (firebaseapp.com) where the subdomain's real age is unknown
Domain not present in Cisco Umbrella top 1M despite claiming a major brand
Email-collection prompt ('Enter your email to create or restart your membership') used as a lure
Domain age information unavailable

Details

Page Title

Netflix

Scan Type

public

Domain Name Analysis

Domain 'netflix-71f05.firebaseapp.com' uses the commercial generic top-level domain (.com), featuring subdomain 'netflix-71f05'. Its registrable label 'firebaseapp' stretches across 11 characters with 5 vowels and 6 consonants. Word splitting yields 3 words: fire, base, app. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://netflix-71f05.firebaseapp.com/

Page Load Overview

0.61s
Total Load Time
695 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:2,592 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media82% confidence
Type: static
Method: ml+structural

All Detected Categories

entertainment media
82%
technology software
64%
finance banking
55%
blog personal website
54%
social media network
51%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
121--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1AE2275B96585207B573749C57117E70EB2A3C03AE5076CA83BF8CE6A5FE5F0A86B1180

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TG9p71P2gmsElK1H6bC9EZWaVonoaIPU8/flSU1xfkUVhty8aMfjUkfwUb2Ln1Hg:a9F1egjP6RWImC+U29jwnJsGxg1JpBOf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9962:ZIAAmJFCLBg0iMoEQjEBRUCRJSQSCmgCDAl5hpi5CmDOEhDtKhWoEsIcBECAD4Fb8QOtBAWCBNAAACghlVwQIFCVCARiAIqg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000018fdff41000c
Perceptual Hash:9a6c33649a6cb31b
Difference Hash:25e43321e18739d9
Wavelet Hash:0100f9fffff7000c
Color Hash:#331f93

Scan History

Scan history not available

Unable to load historical scan data